Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

glprop.com

glprop.com

Discovered 2023-09-02 19:03 UTC
Est. attack date 2023-09-02

Description:

Global Logistic Properties Ltd. operates as an investment holding company, which through its subsidiaries engages in the provision of distribution facilities and services. Its business solutions include multi-tenant distribution facilities developmen...

Infostealer activity detected by HudsonRock

Compromised Employees: 1

Compromised Users: 2

Third Party Employee Credentials: 14


External Attack Surface: 17


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • trustandsafetysupport.aws.com
  • 6164e276a36749637960aa77663bce06e7af2791efd82eafebe9feef05f0cd7cglprop.com.whoisproxy.org
  • 6164e276a36749637960aa77663bce06e4aea05448f4fc19f5eaf1e274c3e3a4glprop.com.whoisproxy.org
  • 6164e276a36749637960aa77663bce0623dc8185df63b4914d32fb8aa5e17df1glprop.com.whoisproxy.org
  • 6164e276a36749637960aa77663bce063f645e65468e573977a8cbfe3001aa50glprop.com.whoisproxy.org
MX Records
  • mxa-00821902.gslb.pphosted.com. Proofpoint
  • mxb-00821902.gslb.pphosted.com. Proofpoint
TXT Records
  • docusign=c455c44f-386a-460e-b776-96e5f467d7c9
  • v=spf1 include:spf1.glprop.com include:spf2.glprop.com include:sendgrid.net include:spf-00821902.pphosted.com include:spf-00821903.pphosted.com ~all
  • anthropic-domain-verification-skrxe5=QqUGZlqfNLdeLZquTPlbcKOOK
  • apple-domain-verification=gGyo08DSNcWfynMf
  • atlassian-domain-verification=uEU4h6qro5gReqnFS0wtOgEB4SMzkVf4RJA3V5AhudNqvmgAnMrO0hTEHLxumNdD
  • docusign=23221623-e49a-45c3-b375-2515b49a28d8
  • docusign=35239870-12fa-4d66-99ea-038da7601fe9
  • docusign=496e5d10-3c51-4848-825b-93704b78ec65
Cloud / SaaS Services Detected
Apple Atlassian Anthropic SendGrid DocuSign Proofpoint

Leak Screenshot:

Leak Screenshot